#CERTUA warns cyber defenders of a third in a row #UAC0006 attack targeting Ukrainian financial institutions with #SmokeLoader #malware. Detect associated malicious activity with relevant #Sigma rules in the SOC Prime Platform.

https://socprime.com/blog/detecting-smokeloader-campaign-uac-0006-keep-targeting-ukrainian-financial-institutions-in-a-series-of-phishing-attacks/
#DFIR #SOC #threathunting

Detecting SmokeLoader Campaign: UAC-0006 Keep Targeting Ukrainian Financial Institutions in a Series of Phishing Attacks - SOC Prime

Detect UAC-0006 phishing attacks targeting Ukrainian financial institutions with SmokeLoader malware using Sigma rules from SOC Prime Platform.

SOC Prime